CVE-2024-5661
published 2024-06-13CVE-2024-5661: An issue has been identified in both XenServer 8 and Citrix Hypervisor 8.2 CU1 LTSR which may allow a malicious administrator of a guest VM to cause the host…
PriorityP420medium6CVSS 3.1
AVLACLPRHUINSCCNINAH
EPSS
0.17%
6.7th percentile
An issue has been identified in both XenServer 8 and Citrix Hypervisor 8.2 CU1 LTSR which may allow a malicious administrator of a guest VM to cause the host to become slow and/or unresponsive.
Affected
8 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| citrix | citrix_hypervisor | — | — |
| citrix | citrix_hypervisor | 8 – 0 | — |
| citrix | citrix_hypervisor | 8.2 CU1 LTSR – XS82ECU1068 | — |
| citrix | hypervisor | — | — |
| citrix | xenserver | — | — |
| citrix | xenserver | — | — |
| citrix | xenserver | 8 – 0 | — |
| citrix | xenserver | 8.2 CU1 LTSR – XS82ECU1068 | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Citrix
XenServer and Citrix Hypervisor Security Update for CVE-2024-5661
vendor_citrix·2024-07-13·CVSS 6.0
CVE-2024-5661 [MEDIUM] CWE-799 XenServer and Citrix Hypervisor Security Update for CVE-2024-5661
XenServer and Citrix Hypervisor Security Update for CVE-2024-5661
Pre-requisites CWE CVE-2024-5661 Potential Denial of Service Privileged access within a guest VM CWE-799 Instructions For customers using XenServer 8, we have pushed an update to both the Early Access and Normal update channels. We recommend that customers update to the latest version from their chosen channel following the instructions at https://docs.xenserver.com/en-us/xenserver/8/update For customers using Citrix Hypervisor 8.2 CU1 LTSR, we have released a hotfix to address this issue. We recommend that customers install this hotfix and follow the instructions in the linked article as their update schedule permits. The hotfix can be downloaded from the following location: CTX677067- https://support.citrix.com/article/CT
Citrix
CVE-2024-5661: An issue has been identified in both XenServer 8 and Citrix Hypervisor 8.2 CU1 LTSR which may allow a malicious administrator of a guest VM to cause t
vendor_citrix·2024-06-13·CVSS 6.0
CVE-2024-5661 [MEDIUM] CVE-2024-5661: An issue has been identified in both XenServer 8 and Citrix Hypervisor 8.2 CU1 LTSR which may allow a malicious administrator of a guest VM to cause t
CVE-2024-5661: An issue has been identified in both XenServer 8 and Citrix Hypervisor 8.2 CU1 LTSR which may allow a malicious administrator of a guest VM to cause the host to become slow and/or unresponsive.
GHSA
GHSA-f2p4-q7ff-2gr3: An issue has been identified in both XenServer 8 and Citrix Hypervisor 8
ghsa_unreviewed·2024-06-13
CVE-2024-5661 [MEDIUM] GHSA-f2p4-q7ff-2gr3: An issue has been identified in both XenServer 8 and Citrix Hypervisor 8
An issue has been identified in both XenServer 8 and Citrix Hypervisor 8.2 CU1 LTSR which may allow a malicious administrator of a guest VM to cause the host to become slow and/or unresponsive.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2024-06-13
Published